CVE-2026-58270

CVE-2026-58270 published: Sync-in Server is an open-source platform for file storage, sharing, collaboration, and syncing. Prior to version 2.4.0, the sync diff endpoint compiles a user-supplied string into a `RegExp` with no complexity validation. A catastrophic-backtracking patter...

View full NVD advisory → ← Back to CVE watch